Senior Engineer, Cyber Security
Olympus Corporation of the AmericasAbout the role
Working Location: MASSACHUSETTS, WESTBOROUGH
Workplace Flexibility: Field
For more than 100 years, Olympus has focused on making people’s lives healthier, safer and more fulfilling.
Every day, we live by our philosophy, True to Life, by advancing medical technologies and elevating the standard of patient care so people everywhere can fulfill their desires, dreams, and lives.
Our five Core Values empower us to achieve Our Purpose:
Patient Focus, Integrity, Innovation, Impact and Empathy.
Learn more about Life at Olympus.
**Please note: All correspondence will be sent from our Olympus domain (@Olympus.com). If you receive correspondence from an entity other than @Olympus.com, it is likely not legitimate.
Job Description
Under direction of the Senior Cyber Security Manager R&D, this position is supporting the local cybersecurity design, development, documentation and execution of product design and test strategies. Additionally responsible for the global information exchange within the global CoE PCS department to implement global product security activities within the region.
Job Duties
- Support product development and implementation teams in the requirements, specification, development, verification, and deployment of security measures in new, currently marketed, and legacy products, which run Linux or Windows operating systems.
- Proposes solutions and defines the technical direction for product security development efforts. Support secure architecture designs.
- Support the development and execution of security plans and product security specifications for new products.
- Support vulnerability scans on software prior to release.
- Supports cybersecurity risk management activities, including threat modeling and vulnerability assessments. Works with the product team to specify risk controls based on the calculated CVSS scores.
- Participates in design and code reviews to identify security-related issues and recommends design changes as appropriate.
- Assists development teams in setting up penetration and fuzz testing of new products containing software.
- Supports creation of customer-facing product security documents such as MDS2 forms (Manufacturer Disclosure Statement for Medical Device Security).
- Provides support on product security issues and questions that are escalated to Engineering
- Develops awareness of security concerns, shares best engineering practices, and creates/updates procedures to ensure compliance.
- Assists with creating and maintaining facility-level procedures and work instructions for the cybersecurity program.
- Support responses to cybersecurity incidences.
- Supports product teams in implementing and verifying security measures by providing guidance, helping to establish security measures, and applying appropriate tools.
- Support continued improvement of security-related processes and tools. Collaborates with other facilities and corporate to facilitate improvements.
- Provides training on product security to internal teams.
- Continuously expands knowledge and expertise in cybersecurity
- Remains abreast of the evolving regulatory guidance, legislation, and industry standards applicable to medical device and healthcare IT cybersecurity (e.g., CVSS, ISO, IEC, NIST, AAMI, FDA, HIPAA, GDPR, DoD RMF guidance/standards).
- Identifies and evaluates new technologies and tools related to security.
- Proposes solutions and helps define the future technical direction for product security.
Job Qualifications
Required:
- BS Degree in Computer Science, Information Assurance, Computer Networking, and other related fields required. Cybersecurity Bootcamp graduates with a bachelor’s degree in other areas will be considered.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s